Change TLS Settings

This function on the Platform Administration view configures a secure (TLS) platform connection, as well as changes related secure platform connection (platformtls) properties.

In Niagara 4.7 and later, increased security measures prevent editing the State property under Platform TLS Settings. Supervisor stations must use TLS (port 5011) for remote platform connections. In a platform connection on a PC, State is set to “TLS only” and the daemon HTTP Port indicates “5011” (3011 is disabled in TLS settings). Note that in Platform Administration on the JACE, you can still change the TLS settings for State, Port, Certificate, and Protocol.

The figure below shows the Platform TLS Settings window with default values.

Figure 32.   Platform TLS Settings with default values
Image
Figure 33.   Platform TLS Settings on remote controller may be configured as needed
Image

When you click Save after making any changes, the changes are immediately applied. Often this means your current platform connection closes, and then opens in Workbench.

For example if you change the Port from (default) 5011 to another port number, your reopened platform TLS connection uses this new port, shown in parentheses (nnnn) to indicate that a port other than the default is being used.

 NOTE: Before closing the host (removing it from the Nav tree), carefully note the new secure platform port number you entered. In the future you must specify that port number whenever making a secure connection to this platform.